Skip to main content

LogRhythm

Download With Dependencies

LogRhythm security intelligence.

The LogRhythm pack provides security operations to deliver comprehensive and actionable information into your enterprise IT environment.

What does this pack do?

  • Execute queries on logs.
  • Retrieve case summaries, create new cases, or update the properties of a case.
  • Get host information, add new hosts and update host status, and query and update alarms.
  • Fetch cases and alarms as incidents.
  • Retrieve, update, and remove tags.
  • Get list details, add or remove items from lists.

This pack includes the following playbooks:

  • Logrhythm Alarm Handling playbook that is triggered when fetching a LogRhythm alarm incident.
  • LogRhythmRestV2 - Search query playbook that retrieves query results.

The LogRhythm pack provides security operations to deliver comprehensive and actionable information into your enterprise IT environment.

What does this pack do?

  • Execute queries on logs.
  • Retrieve case summaries, create new cases, or update the properties of a case.
  • Get host information, add new hosts and update host status, and query and update alarms.
  • Fetch cases and alarms as incidents.
  • Retrieve, update, and remove tags.
  • Get list details, add or remove items from lists.

This pack includes the following playbooks:

  • Logrhythm Alarm Handling playbook that is triggered when fetching a LogRhythm alarm incident.
  • LogRhythmRestV2 - Search query playbook that retrieves query results.

PUBLISHER

Cortex

PLATFORMS

Cortex XSOARCortex XSIAM

INFO

CertificationRead more
Supported ByCortex
CreatedSeptember 23, 2020
Last ReleaseFebruary 18, 2024
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
Content packs are licensed by the Publisher identified above and subject to the Publisher’s own licensing terms. Palo Alto Networks is not liable for and does not warrant or support any content pack produced by a third-party Publisher, whether or not such packs are designated as “Palo Alto Networks-certified” or otherwise. For more information, see the Marketplace documentation.